126 to 150 of 604 Threat Intelligence Jobs in the UK

Threat Intelligence Analyst, Threat Disruption

Location
Greater London, England, United Kingdom
employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: Threat Disruption provides expert threat intelligence and conducts scaled operations against the adversaries attacking X. We investigate and disrupt threats across the following … these investigations, we conduct sweeps to disrupt immediate threats and provide recommendations to product, engineering, and policy teams to squash systemic vulnerabilities. Where appropriate, Threat Disruption also coordinates with law enforcement and other external parties to enhance detections and support prosecution of bad actors. Come help us defend ...

Principal Analyst Detection Engineering - Technology Vendor

Location
United Kingdom
Security Operations, the successful candidate will lead the detection function, reducing false positives, maturing rule sets aligned to MITRE ATT&CK, and applying threat intelligence to stay ahead of the evolving threat landscape. The role also involves managing and mentoring a small team of analysts while retaining … detections across a wide range of security technologies Build and manage rule packs based on technology feeds utilising the MITRE ATT&CK framework Utilise threat intelligence reports to continually refine detections against the current threat landscape Ratify log source receipt pre and post deployment, confirming logs ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
London, United Kingdom
Salary
£ 80 K
outside Technology.A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements.Key ResponsibilitiesOwn the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring playbooks, tooling … strategy, and operational runbooks.Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting.Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes.Lead ...

Head of Cyber Defence & Incident Response London - United Kingdom - Full Time

Location
Greater London, England, United Kingdom
Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities Own the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring … operational runbooks. Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting. Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes. ...

Head of Cyber Defence & Incident Response

Hiring Organisation
Quadient
Location
Greater London, United Kingdom
Employment Type
Full Time
Technology. A key focus is optimising security tooling (e.g., SIEM, SOAR, EDR/XDR, NDR, email security, vulnerability scanning) and driving strong vulnerability and threat management, using threat intelligence to prioritise defensive improvements. Key Responsibilities Own the incident response lifecycle (prepare, detect, analyse, contain, eradicate, recover), ensuring … operational runbooks. Own the vulnerability management programme (on‐prem and cloud), including scanning coverage, prioritisation, remediation SLAs, exception handling, verification, and executive reporting. Drive threat management by operationalising threat intelligence (internal and external) into defensive priorities: detection use cases, hardening actions, control uplift and proactive hunting themes. ...

Security Engineer

Hiring Organisation
NTT DATA
Location
Birmingham, West Midlands (County), United Kingdom
Salary
£ 70 K
Engineer and play a pivotal role in defending clients against evolving cyber threats. You will leverage your expertise in SIEM platforms, threat detection, and incident response to strengthen security operations center (SOC) capabilities. Collaborating with cross-functional teams, you’ll develop automated playbooks, engineering use cases, and deploying advanced … real-time environment. Core Responsibilities SIEM Engineering & Analytics Deploy, configure, and maintain SIEM platforms such as Splunk, QRadar, Sentinel, and Chronicle to enable robust threat detection.Normalize and onboard diverse log sources from cloud and on-premises environments for seamless monitoring.Develop and continually refine SIEM rules and queries ...

Regional Sales Manager – UK Defence & National Security

Hiring Organisation
CrowdStrike
Location
United Kingdom
Salary
£ 60 K
National Security clients during a pivotal period of national cyber transformation. You'll be responsible for driving complex, high-value opportunities across MOD, the Intelligence Community and critical CNI sectors—positioning CrowdStrike's AI-native XDR platform as the cornerstone of the UK's cyber defence posture.This role demands … battle tested capabilities.What You'll Do:Strategic Account LeadershipOwn and expand relationships within 10-15 strategic Defence and National Security accounts, including MOD, Intelligence agencies, CNI.Build multi-year account strategies aligned to departmental cyber roadmaps, capability development programmes, and procurement cyclesNavigate complex stakeholder environments including SROs, CISOs, CTOs ...

Senior Consultant, Red Team, Offensive Security

Hiring Organisation
Kroll
Location
London, United Kingdom
Salary
£ 80 K
with a Senior Consultant/L3 Red Team Operator. Our expertise in red team operations, purple team engagements, assumed-breach testing, adversary emulation, and threat intelligence-led penetration testing is in high demand. Our collaborative ties to our forensic and incident response team, detection engineering team, threat intelligence team, and wider Cyber Risk practice enable us to deliver high-impact offensive security engagements for clients across a range of sectors.This role will be based in the UK.Apply now to join One team, One Kroll.What you’ll doAs a Senior Consultant, Red Team Operator, you will ...

Senior Cyber Analyst

Hiring Organisation
Methods Consulting
Location
London, United Kingdom
Salary
£ 100 K
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. Role SummaryThe Senior Cyber Analyst … senior technical lead within the Cyber Services function, responsible for complex cyber investigations, incident response, threat detection, and security platform optimisation. Acting as the highest technical escalation point within cyber operations, the role provides leadership, mentoring, and strategic direction to ensure customers maintain a strong and resilient security posture.RequirementsIncident ...

Senior Cyber Analyst

Location
Greater London, England, United Kingdom
risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks. Role Summary The Senior Cyber Analyst … senior technical lead within the Cyber Services function, responsible for complex cyber investigations, incident response, threat detection, and security platform optimisation. Acting as the highest technical escalation point within cyber operations, the role provides leadership, mentoring, and strategic direction to ensure customers maintain a strong and resilient security posture. ...

Threat Intelligence Analyst: SOC Threat Insight & IOC Expert

Location
Greater London, England, United Kingdom
Jobtailor in London is seeking a Cyber Threat Intelligence Analyst to collect and correlate intelligence from OSINT, commercial and government sources, and to monitor and disseminate critical insights to stakeholders. You will support campaigns with tactical analyses and identify new TTPs and vulnerabilities for detection opportunities. … will also track threat actors, produce actionable reports and IOCs, escalate findings with risk analysis, and provide editorial guidance to junior analysts #J-18808-Ljbffr ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, United Kingdom
Salary
£ 80 K
shaping the future of fintech – and we’re just getting started.The roleYou will own and evolve the company’s threat detection and threat-hunting capability. This role defines what “good” looks like for detection and increasingly engineers it directly as capability shifts into Cyber Security.This … with Security Operations, GRC and Engineering—setting standards, direction, and expectations—while progressively taking ownership of the most complex and high-value detection and threat engineering work.What you’ll be responsible forEngineering high-fidelity threat detections across endpoint, identity, cloud, and SaaSDefining detection standards, principles, and quality thresholds ...

Cyber Defence Senior Analyst

Location
United Kingdom
follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. … support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures ...

Cyber Defence Senior Analyst

Location
Bangor, Caernarfonshire, United Kingdom
follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. … support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures ...

Cyber Defence Senior Analyst

Location
Hillsborough, West Yorkshire, United Kingdom
follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. … support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures ...

Cyber Defence Senior Analyst

Location
Belfast City District, Northern Ireland, United Kingdom
follow-the-sun global model. Documentation And Process Improvement Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. … support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures ...

Senior SOC Engineer

Hiring Organisation
Anson McCade
Location
Glasgow, Lanarkshire, United Kingdom
Salary
£ 60 K
detection, response, and automation. This pivotal role requires deep expertise in IBM QRadar, with a strong focus on playbook development, analytical rule creation, and threat modelling. The Senior SOC Engineer will play a key role in building and optimising detection and response strategies, ensuring robust protection against evolving threats.Key … Engineering & ManagementDeploy, configure, and maintain the QRadar SIEM platform.Onboard and normalise log sources across on-premises and cloud environments.Develop and optimise analytical rules for threat detection, anomaly detection, and behavioural analysis.Playbook Development & AutomationDesign and implement incident response playbooks for scenarios such as phishing, lateral movement, and data exfiltration.Integrate playbooks ...

Cyber Security Supervisor

Location
Winnersh, England, United Kingdom
response activities Conduct root cause analysis of security incidents and implement corrective actions to prevent future occurrences Evaluate performance of security operations vendors Lead threat hunting activities to proactively identify and mitigate emerging threats Stay informed about the latest security threats and vulnerabilities through threat intelligence feeds … industry publications, and other sources Analyze security intelligence and incorporate relevant threat information into security operations processes Vulnerability Management: Oversee vulnerability management operations with key internal stakeholders, including vulnerability scanning, assessment, and remediation Lead the development and implementation of vulnerability management operational policies and procedures Security Tooling & Technology ...

Principal Product Designer

Location
Belfast City District, Northern Ireland, United Kingdom
human risk management company specializing in unmasking threats before they elevate. We are a trusted advisor who operates as an extension of security, intelligence, legal, and human resource teams to protect their people and business. Our intelligence‐led solutions help enterprises make critical decisions, manage human risk … high-visibility role: you’ll work cross-functionally to understand distinct personas and problem spaces across Human Digital Risk—including Executive Protection, Insider Threat, and digital risk monitoring—and turn that understanding into clear, intuitive product experiences. You’ll lead both 0→1 concepts and the evolution of existing ...

Hybrid Senior Cyber Threat Intelligence Analyst

Location
Portsmouth, England, United Kingdom
Babcock International is seeking a Senior Cyber Threat Intelligence Analyst to identify, analyse and report cyber threats impacting its people, information, systems and customers. You will transform complex threat data into intelligence supporting proactive defence and risk reduction across the organisation. You will work with Security ...

Senior Remediation Advisor, Mandiant STS

Location
City of Westminster, England, United Kingdom
risk and reduces the impact of security breaches, by utilizing the latest industry standards and combining experience and knowledge gained from Mandiant Incident Response, Intelligence and Managed Defense practices, you will be able to help clients contain security events, harden their environments, and transform their security programs. Mandiant … long term or strategic security transformation projects in addition to IR engagements.Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. ...

Global Cyber Threat Intelligence Director

Location
Greater London, England, United Kingdom
JPMorgan Chase & Co. is seeking an Executive Director in Cyber Intelligence within the EMEA Threat Intelligence team. You will identify and analyze external cyber threats to protect the firm, collaborating with teams across North America and APAC to prioritize intel streams and allocate resources for maximum impact. … will shape policies, drive intelligence initiatives, and lead efforts to strengthen threat detection and response capabilities while supporting secure business initiatives and #J-18808-Ljbffr ...

Senior Incident Response Consultant, Mandiant (Weekend team)

Location
United Kingdom
tasks and mentor junior consultants as needed. About the job In this role, you will use your deep understanding of both existing and emerging threat actors, experience identifying rapidly changing tools, tactics and procedures of attackers, and strong computer forensics response knowledge and skills. You must be able … have the ability to lead, train, and mentor other consultants. Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique ...

Cyber Threat Intelligence Principal

Location
Greater London, England, United Kingdom
foundation, cyber risk at our core. We don't just use AI, we shape it. Built on AI from day one. Artificial intelligence has been part of our strategy since the beginning, blended with deep cybersecurity and insurance expertise and backed by rigorous testing. Trusted by more than … challenge themselves, push boundaries, and do the best work of their careers. The Impact You Will Make Work in a team of cyber threat analysts, economists, data scientists, actuaries and risk modelers to develop insights, scores, and features for a suite of products delivering cyber risk analytics ...

Embedded Regional Threat Intelligence Specialist (Middle East Focus)

Location
Greater London, England, United Kingdom
Control Risks' Embedded Consulting team is hiring a Regional Threat Intelligence Specialist to support a global tech client in producing reports and other threat-related products. This role will support threat, vulnerability, and risk assessments, as well as some other analytical content for the EMEA region. … research and analysis on specific locations within EMEAassessing threats from natural hazards, infrastructure, terrorism, and political instability, among others. Produce clear, concise, and actionable intelligence reports tailored to stakeholders, including threat summaries, trending topics, and vulnerability assessments. Monitor and research emerging trends and topics related to data centers ...